Andreas Stieger 2017-03-06 08:49:46 +00:00 committed by Git OBS Bridge
parent acebaf1ad7
commit 648a20cede

View File

@ -5,15 +5,15 @@ Sat Mar 4 12:13:43 UTC 2017 - astieger@suse.com
This release fixes minor vulnerabilities that could be used to
trigger a dissector crash or infinite loops by sending specially
crafted packages over the network or into a capture file:
* wnpa-sec-2017-03: LDSS dissector crash
* wnpa-sec-2017-04: RTMTP dissector infinite loop
* wnpa-sec-2017-05: WSP dissector infinite loop
* CVE-2017-6467: NetScaler file parser infinite loop (wnpa-sec-2017-11)
* CVE-2017-6468: NetScaler file parser crash (wnpa-sec-2017-08)
* CVE-2017-6469: LDSS dissector crash (wnpa-sec-2017-03)
* CVE-2017-6470: IAX2 dissector infinite loop (wnpa-sec-2017-10)
* CVE-2017-6471: WSP dissector infinite loop (wnpa-sec-2017-05)
* CVE-2017-6472: RTMTP dissector infinite loop (wnpa-sec-2017-04)
* CVE-2017-6473: K12 file parser crash (wnpa-sec-2017-09)
* CVE-2017-6474: NetScaler file parser infinite loop (wnpa-sec-2017-07)
* wnpa-sec-2017-06: STANAG 4607 file parser infinite loop
* wnpa-sec-2017-07: NetScaler file parser infinite loop
* wnpa-sec-2017-08: NetScaler file parser crash
* wnpa-sec-2017-09: K12 file parser crash
* wnpa-sec-2017-10: IAX2 dissector infinite loop
* wnpa-sec-2017-11: NetScaler file parser infinite loop
- restore license in about dialog boo#1026507
-------------------------------------------------------------------